PT-2025-17734 · Unknown · Code-Projects Online Class/Exam Scheduling System

·

CVE-2025-44134

·

Published

2025-04-24

·

Updated

2025-05-14

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions Code-Projects Online Class and Exam Scheduling System version 1.0
Description A vulnerability was found in the file /Scheduling/pages/class save.php, where manipulation of the class parameter can lead to SQL injection attacks.
Recommendations For Code-Projects Online Class and Exam Scheduling System version 1.0, consider restricting access to the /Scheduling/pages/class save.php file until a patch is available, and avoid using the class parameter in this context to minimize the risk of exploitation.

Exploit

Fix

SQL injection

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2025-44134

Affected Products

Code-Projects Online Class/Exam Scheduling System